Description
In Google Assistant in Android 9, there is a possible permissions bypass that allows the Assistant to take a screenshot of apps with FLAG_SECURE. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-11745 | In Google Assistant in Android 9, there is a possible permissions bypass that allows the Assistant to take a screenshot of apps with FLAG_SECURE. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. |
References
| Link | Providers |
|---|---|
| https://source.android.com/security/bulletin/2019-09-01 |
|
History
No history.
Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2024-08-04T18:42:50.148Z
Reserved: 2018-12-10T00:00:00.000Z
Link: CVE-2019-2103
No data.
Status : Modified
Published: 2019-09-05T22:15:11.523
Modified: 2024-11-21T04:40:14.137
Link: CVE-2019-2103
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD